PT-2026-55773 · Sourcecodester · Onlne Examination & Learning Management System
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
SourceCodester Onlne Examination & Learning Management System version 1.0
Description
An issue exists in the Registration Endpoint within the
register.php file. A remote attacker can manipulate the role argument to cause improper privilege management.Recommendations
Restrict access to the
role argument in the register.php file to prevent unauthorized privilege escalation.Exploit
Fix
Improper Privilege Management
Incorrect Privilege Assignment
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Onlne Examination & Learning Management System